aswMBR version 0.9.8.986 Copyright(c) 2011 AVAST Software Run date: 2011-12-12 11:32:31 ----------------------------- 11:32:31.520 OS Version: Windows x64 6.1.7600 11:32:31.520 Number of processors: 8 586 0x1E05 11:32:31.521 ComputerName: HEINTJE-PC UserName: Heintje 11:32:35.610 Initialize success 11:32:56.253 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-0 11:32:56.254 Disk 0 Vendor: ST3500418AS CC45 Size: 476940MB BusType: 3 11:32:56.263 Disk 0 MBR read successfully 11:32:56.264 Disk 0 MBR scan 11:32:56.265 Disk 0 TDL4@MBR code has been found 11:32:56.267 Disk 0 MBR hidden 11:32:56.269 Disk 0 MBR [TDL4] **ROOTKIT** 11:32:56.270 Disk 0 trace - called modules: 11:32:56.273 ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys >>UNKNOWN [0xfffffa8007c7f254]<< 11:32:56.275 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa8007c5a520] 11:32:56.278 3 CLASSPNP.SYS[fffff8800165a43f] -> nt!IofCallDriver -> [0xfffffa8007afd520] 11:32:56.280 5 ACPI.sys[fffff88000efc781] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-0[0xfffffa8007afe060] 11:32:56.283 \Driver\atapi[0xfffffa8007ae8900] -> IRP_MJ_INTERNAL_DEVICE_CONTROL -> 0xfffffa8007c7f254 11:32:56.285 Scan finished successfully 11:33:16.957 Disk 0 MBR has been saved successfully to "C:\Users\Heintje\Desktop\MBR.dat" 11:33:16.962 The log file has been saved successfully to "C:\Users\Heintje\Desktop\aswMBR.txt"